Alerts This Week
Warning Icon 1 764
Alerts This Week
Warning Icon 1 764

Fedora 21 2015-7942 Critical GnuTLS Security Update Addressing Issues

fedora
Calendar Grey May 14, 2015
Dist Fedora Esm H88
An essential Fedora 21 security notice regarding the gnutls update to version 3.3.15, rectifying major security flaws.
updated to 3.3.15 (#1218426,#1218513)

Summary

GnuTLS is a secure communications library implementing the SSL, TLS and DTLS

protocols and technologies around them. It provides a simple C language

application programming interface (API) to access the secure communications

protocols as well as APIs to parse and write X.509, PKCS #12, OpenPGP and

other required structures.

Update Information:

updated to 3.3.15 (#1218426,#1218513)

Change Log

* Mon May 4 2015 Nikos Mavrogiannopoulos - 3.3.15-1 - updated to 3.3.15 (#1218426,#1218513) * Mon Mar 30 2015 Nikos Mavrogiannopoulos 3.3.14-1 - new upstream release - improved BER decoding of PKCS #12 structures (#1131461) * Thu Feb 26 2015 Nikos Mavrogiannopoulos 3.3.13-1 - new upstream release - Make build verbose - Use %license * Mon Jan 19 2015 Nikos Mavrogiannopoulos 3.3.12-1 - new upstream release * Mon Jan 5 2015 Nikos Mavrogiannopoulos 3.3.11-2 - enabled guile bindings (#1177847) * Thu Dec 11 2014 Nikos Mavrogiannopoulos 3.3.11-1 - new upstream release

References


[ 1 ] Bug #1218426 - gnutls: MD5-based ServerKeyExchange signature accepted by default (GNUTLS-SA-2015-2) https://bugzilla.redhat.com/show_bug.cgi?id=1218426

Update Instructions

This update can be installed with the "yum" update program. Use su -c 'yum update gnutls' at the command line. For more information, refer to "Managing Software with yum", available at .

Severity
critical
Lowest
Low
Medium
High
Critical

Name: gnutls
Product: Fedora 21
Version: 3.3.15
Release: 1.fc21
Summary: A TLS protocol implementation

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here